NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71344 | CVE-2004-0942 | Apache webserver 2.0.52 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request with a MIME header containing multiple lines with a large number of space characters. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
78507 | CVE-2001-1072 | Apache with mod_rewrite enabled on most UNIX systems allows remote attackers to bypass RewriteRules by inserting extra / (slash) characters into the requested path, which causes the regular expression in the RewriteRule to fail. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
22726 | CVE-2015-0227 | Apache WSS4J before 1.6.17 and 2.x before 2.0.2 allows remote attackers to bypass the requireSignedEncryptedDataElements configuration via a vectors related to "wrapping attacks." | 2 | 5 | Medium | 2017-01-19 | 2015-07-09 | View | |
31787 | CVE-2014-3623 | Apache WSS4J before 1.6.17 and 2.x before 2.0.2, as used in Apache CXF 2.7.x before 2.7.13 and 3.0.x before 3.0.2, when using TransportBinding, does not properly enforce the SAML SubjectConfirmation method security semantics, which allows remote attackers to conduct spoofing attacks via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2015-04-24 | View | |
75849 | CVE-1999-1199 | Apache WWW server 1.3.1 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via a large number of MIME headers with the same name, aka the "sioux" vulnerability. | 2 | 10 | High | 2017-01-05 | 2016-10-17 | View |
Page 1300 of 17672, showing 5 records out of 88360 total, starting on record 6496, ending on 6500